URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: levitts.ug
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-18 07:49:09 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-07-18 07:49:13 217.8.117.77Not listedAS49505 SELECTEL- TMno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-18 07:49:31http://levitts.ug/ds1.exeOfflineexe abuse_ch
2020-07-18 07:49:26http://levitts.ug/ds2.exeOfflineexe abuse_ch
2020-07-18 07:49:21http://levitts.ug/rc.exeOfflineexe ModiLoader ext RemcosRAT ext abuse_ch
2020-07-18 07:49:13http://levitts.ug/ac.exeOfflineAsyncRAT ext exe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-28 18:46:478fa8051d68f0b059927318bc2b712fa94f7a2426e0ad00061e3c3dc2206bf955exeModiLoader
2020-07-28 18:46:377dad6cb83ab731da30912de41564164f65ce6cb1e81c1800358d5df6115c79b8exe AsyncRAT
2020-07-23 16:20:2229f1643d5043e4f572f64c613b20d55aed990f165a3e27032123f358381effe2exe  
2020-07-23 16:20:21f3a51db297da59fc65bceff7571d491910564533580fca09b07cc6b6e76fb858exe  
2020-07-23 16:20:20d40ed1285acb1e8e2e8186291feffdc8a716837218e81ba27d4f3ce2485ad73fexe RemcosRAT
2020-07-23 16:20:174254a5736be34c759b745444c7b65e813fec9a74f4174694dfd9f2021bf03aeaexe  
2020-07-22 10:44:58d54b0e29ca93d99346fd3c79409bd0ff599a8487603ac61c9cc14d34e74502d2exe ModiLoader
2020-07-22 10:44:381ddf95311b085fc2ac447335619042ce187d52031ab7e676659512fcca2cd3a1exe AsyncRAT
2020-07-21 06:07:49f158368c489837c721cb01f7bf86f18536f9948f35f2ced67827d638b8253f16exeRemcosRAT
2020-07-21 06:06:4541811937b0142457702e32aef8b88a0b81cff5620bbdb66b1dbc58938ea8b66eexe AsyncRAT
2020-07-20 08:54:54b3dfbf42ff4e7958e10cc913ce51f6e30e90993d666224bfd404762e0e3b0386exe  
2020-07-20 08:54:295fa48fe1cf1eb7b48c57e518dd5ece7c25d0ff6295cb1aab40750566a2a00c4cexe AsyncRAT
2020-07-19 07:20:376f1a09ea384ce7c7d0c0ed54de6e9011d51531b36bc65b88c7560d88a1a0e434exe  
2020-07-19 07:18:272e1b3dec1609efaee181ea5c2865ace9ac7be4b5ee8420a71ef9fff500440377exeRemcosRAT
2020-07-18 07:49:313076085673f5f93b3ef64f04e4e587e719953d98e64f1e742c49d523174d7afaexe 
2020-07-18 07:49:2602877c1523986e1fbb50da0a828df2da4aca704d7de19b11c9225e5befbb0572exe 
2020-07-18 07:49:21f3453d83f263aa7665cb7398e7216db55cb8d7d75b8d45cdaf889c9265ba72fbexeRemcosRAT
2020-07-18 07:49:133a730b135815ac2a4614f34cb18e94db6574c765de73db6071e1bb385d1e11b3exeAsyncRAT